24 Nov 2004
Security experts have warned that millions of computer desktops are at risk from a newly discovered vulnerability in Sun Microsystems' Java Virtual Machine (JVM).
IT security firm CyberGuard claimed that the Java flaw, which is present in the JVM on most desktop computers, "poses a significant security threat because it will not be closed by the usual Microsoft update process".
"JVM is used extensively by many online services such as maps or chat portals," said Horst Joepen, chief executive of CyberGuard's Webwasher subsidiary.
"This vulnerability could have a major impact on most enterprises, since even those with strict security policies do not usually forbid the download or use of Java."
Joepen explained that the vulnerability is currently available only as a 'proof of concept' code, and that there had been no recorded outbreak of a virus or worm.
However, he said that once a "vulnerability of this magnitude" is exposed, it is usually not long before the hackers produce an exploit.
"Most PCs are vulnerable, since JVM is downloaded when users try to access websites that check for a JVM and then ask the user to automatically install it," Joepen said. "Since the Sun JVM is not part of Windows, Microsoft patches won't help."
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Sneak peek at the forthcoming glass-based machine
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Digital Account Executive Fulham, London 25k A great...
Our global consultancy client currently seeks a number...
Support Analyst x 1/2 Skills: Apple Mac OSX, Windows...
Network Consultant - London - 55-65k My client are...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?